Anadolu Hayat Emeklilik AHE Mobile Authorization Bypass Vulnerability Allowing Privilege Abuse

Vulnerability

An authorization bypass vulnerability has been identified in the AHE Mobile application developed by Anadolu Hayat Emeklilik Inc. This vulnerability allows privilege abuse by enabling users to bypass authorization controls. It affects AHE Mobile versions 1.9.7 prior to 1.9.9.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation within the application.

Remediation

Users and system administrators are advised to update the application to version 1.9.9 or later.

Added: Sep 23, 2025, 10:17 AM
Updated: Sep 23, 2025, 10:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.